Network-based malcode detection technology

Following the analysis for traditional distributed IDS,disadvantages that applying structure of multiple engine and small rules set to detect network-level malcode were pointed out,which is based on detailed protocol decoding.Detection model and anti-malcode markup language of network-level malcode...

Full description

Saved in:
Bibliographic Details
Main Authors: WU Bing1, YUN Xiao-chun2, GAO Qi1
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2007-01-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/74656974/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841537440833077248
author WU Bing1
YUN Xiao-chun2
GAO Qi1
author_facet WU Bing1
YUN Xiao-chun2
GAO Qi1
author_sort WU Bing1
collection DOAJ
description Following the analysis for traditional distributed IDS,disadvantages that applying structure of multiple engine and small rules set to detect network-level malcode were pointed out,which is based on detailed protocol decoding.Detection model and anti-malcode markup language of network-level malcode were designed for single engine and big rules set.The characteristics of network data flow were analyzed.By optimization of patterns,frequent collisions between suffix with data flow and unbalanced branched of chained list were avoided.The efficiency by using WM algorithm to detect malcode on network level can be remarkably increased.
format Article
id doaj-art-3eb2345e48b34184904b51220fb7d8ad
institution Kabale University
issn 1000-436X
language zho
publishDate 2007-01-01
publisher Editorial Department of Journal on Communications
record_format Article
series Tongxin xuebao
spelling doaj-art-3eb2345e48b34184904b51220fb7d8ad2025-01-14T08:34:15ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2007-01-01879174656974Network-based malcode detection technologyWU Bing1YUN Xiao-chun2GAO Qi1Following the analysis for traditional distributed IDS,disadvantages that applying structure of multiple engine and small rules set to detect network-level malcode were pointed out,which is based on detailed protocol decoding.Detection model and anti-malcode markup language of network-level malcode were designed for single engine and big rules set.The characteristics of network data flow were analyzed.By optimization of patterns,frequent collisions between suffix with data flow and unbalanced branched of chained list were avoided.The efficiency by using WM algorithm to detect malcode on network level can be remarkably increased.http://www.joconline.com.cn/zh/article/74656974/computer networkmalcode detectiondetection modelpattern-set optimization
spellingShingle WU Bing1
YUN Xiao-chun2
GAO Qi1
Network-based malcode detection technology
Tongxin xuebao
computer network
malcode detection
detection model
pattern-set optimization
title Network-based malcode detection technology
title_full Network-based malcode detection technology
title_fullStr Network-based malcode detection technology
title_full_unstemmed Network-based malcode detection technology
title_short Network-based malcode detection technology
title_sort network based malcode detection technology
topic computer network
malcode detection
detection model
pattern-set optimization
url http://www.joconline.com.cn/zh/article/74656974/
work_keys_str_mv AT wubing1 networkbasedmalcodedetectiontechnology
AT yunxiaochun2 networkbasedmalcodedetectiontechnology
AT gaoqi1 networkbasedmalcodedetectiontechnology